Wednesday, September 30, 2009

Microsoft Security Essentials

On Tuesday Microsoft launched a new anti-virus protection program labeled Microsoft Security Essentials. This free program provides the basic anti-virus protection necessary in an internet environment where threats are exponentially increasing. I recently installed the product with mixed results.

Installation was very straightforward and easy for a user at any level. It uses a typical wizard with no special or confusing options - just an installation.



After installation the programs runs an automatic update and quick scan of the system which took a very small amount of time. Real-time protection is turned on by default as well as a weekly scan and runs in the system tray similar to any other AV program.



Once installed there are very few settings to manipulate, making it easy for the novice user but somewhat lackluster for the advanced. Options include the ability to set the scan times and frequency, set excluded file types as well as turning off the real-time protection.



The downside is the amount of system resources the program uses. With real-time protection enabled it uses 40-60 MB of RAM. This is 5 times the memory of most other programs (Norton, Avast, etc.). Even with the real-time protection disabled the program still uses around 30 MB.

On the positive side, I loved the way it handled threats. As a test, I went to a site I knew would redirect me to rogue AV.

First, a pop-up appeared down by the system tray:











By clicking the Show Details link we can see what the actual detected threats are:











The user is then able to choose from a list of actions - quarantine, remove, ignore. By clicking the clean computer button the threats will be removed immediately.

What was unique about this was that it actually found the javascript in the redirect to the rogue AV site to be malicious and blocked it before even getting to the download...very impressive.

Overall, the program bogged down the machine too much for sustained usage. I feel this was a good first attempt and Microsoft will likely make revisions to correct the excessive resource problems.

Sunday, September 20, 2009

Avast! Anti-Virus

Avast Anti-Virus has quickly become one of my favorite AV programs. Since installing it a week ago, I've been pleasantly suprised at the effectiveness and the full set of capabilities of this program. 

The features listed by Avast include Anti-Spyware, Anti-Rootkit, IM/P2P Shield, Web Shield and more. Avast also comes with the ability to run a boot time scan...a great option.

In particular, I've been impressed with the web filtering capabilities. It's been able to catch a few different tests I've thrown at it, particularly fake AV programs which there is little AV detection for.

The user interface is relatively straight forward, although there are lots of different options which could cause confusion for an unsaavy user. Personally, I appreciate all of the available options.

Avast will run in the system tray by default. By double-clicking the icon the user will get an active view of what types of scanning is enabled and disabled. By clicking on more details the user can access a  more detailed view as below. This shows the option to set the agressiveness of the program when scanning each protocol, or "shield". Even more granular control over each of the shields can be accessed by going to the customize button.



By right clicking the system tray icon the user is presented with many more options, including the Program Settings option. This will open into the window below, giving you full control over any other options.




Resource utilization for the program is inline with expectations. To save on resources you can disable shields if necessary. The web shield seemed to be the most resource intensive on my system, which I suppose is expected as the majority of my traffic is web based.

I'm currently running the home edition, which is free. There is also a number of fee based options available from Avast, including a professional edition. Avast also has Mac and Linux versions which is a great idea. As these operating systems become more prevalent more viruses and malware will be written for them, as was recently proven with the latest Mac DNS exploits.

More information available at http://www.avast.com/eng/desktop_protection.html

Sunday, September 13, 2009

Snackr RSS Ticker

Snackr is a very neat RSS reader that scrolls your feeds at the bottom of your screen. One of the best, and worst, parts of Snackr is that it runs in Adobe Air. Because of this, it has the advantage of being able to run on any OS that Adobe Air can run on, the disadvantage is that it can take more system resources than you'd expect.

The install is exactly like any other application that runs in Adobe Air. As far as your subscriptions, you have the option of adding your feeds individually or importing an OPML feed list, which is a very nice feature if you already have your feeds setup in a RSS reader.


Another great feature, and something that adds a lot of value for me is the ability to not show feeds older than a certain number of days. So I can set this to 1 day and get the most recent information in my ticker at the bottom, and use my regular RSS reader to view older feeds or catch up on ones that I miss.

Other features include the ability to control the scroll speed, keep on top of other windows, and users can place the ticker anywhere you'd like (top, bottom, left, right). You also can minimize to the bottom of the page to get it out of the way while you work on other things.

If you want to view a summary of an article simply click the article and the scrolling will stop and show the preview as below. Click on the view post to view the article in a browser.


Snackr is a very slick program and one thing that I really like is the ability to run it under Windows and Ubuntu. I do find myself not running it quite often as it takes too much in terms of system resources that I need for other software. I think this may have to do with the couple of hundred RSS feeds I imported. If you need a RSS ticker and don't like Firefox add-on tickers, which I don't, this might be for you.

Monday, September 7, 2009

Immunet Protect Beta

Immunet Protect is a new type of AV program with a new concept - cloud based with collective intelligence. What this means for you is faster and more comprehensive protection against threats. From the Immunet website...

"Immunet Protect provides protection by harnessing the collective wisdom of the security products that you already run, as well as knowledge on the applications installed across our entire user population. Simply put, Immunet Protect collects security judgments on what is, and what is not safe from its community. These aggregated judgments are coalesced in the cloud, and, if they are sound, made available to the rest of the Immunet Community immediately."

Powerful quote and the potential for powerful software. Taking advantage of all security vendors and creating a collective intelligence offers a huge upside.

Going through the install was very painless and offered a "FlashScan" at the end of the wizard which scans running processes and registry keys.


This scan lasted a couple of minutes after which you are able to view the outcomes of the scan, and your scan history, adjust the scan settings and of course, initiate a scan. Under the Summary page you can see how many people are online participating in the community and how many threats you're protected against. 

Current Count: 9,282 people and 3,813,885 threats

On this page you can also click an invite button, which takes you to the Immunet home page. There I presume you enter your facebook credentials and invite your facebook friends to take part in the community, which I have not done at this point.


The settings page above gives several scan options. It will monitor application installs and starts, as well as an active protection mode which will check programs before they can be installed to ensure they are safe. Tray notifications seem to work well and alert me whenever a new application has started or been installed. Overall, the UI is very easy to use. 

One of the things I noticed was a very short scan time. Immunet Protect took just over 1 minute and 20 seconds to scan my system on average. This was due to Immunet scanning only 4000 files on my computer. A Norton scans will scan over 387,000 files and processes - and also takes over 45 minutes to complete. I am not sure the discrepancy here, whether it is scanning for only known threats in known locations, but it certainly left me with the question of what it actually is scanning. 

Also of note was really low resource utilization. I found it only using 12MB of RAM even during scans, so it did not slow my system at all. This seems to be a great add-on to existing virus coverage and serves as a proof-of-concept that this type of cloud based system can work. Keep in mind that this is still in beta and has only been available to the general public for a few weeks now. 

For more information or download go to http://immunet.com/

Saturday, August 29, 2009

Putty Tray

Putty is one of the most widely used apps to SSH from Windows PCs that do not have a SSH command line built in. To download, most people simply go to Google and type in putty and click the first search result. However, by doing so they are missing out on another option - Putty Tray.

Putty Tray is essentially an exact duplicate of the regular Putty, with some cool extra features. The first from a purely stylistic point of view is that it supports transparency. That's right, you now have the flexibility that you have with a Linux Terminal and time savings that transparency can save you...plus it just looks cool. You can configure the transparency by adjusting the "Opacity" setting under the Window settings. I like to use 225 as it makes it dark enough to clearly ready your shell but just transparent enough to see what's behind.



Some other cool features are the URL hyperlinking and the portability options. The URL hyperlinking allows you to click on a URL in Putty Tray and have it open in the default browser. Very handy if you're looking a squid logs, or similar and want to see what a URL actually is. The portability allows you to save you stored sessions to a directory (gets created in the same location as the exe is run from). That way if you want you can save your sessions and keys to a thumb drive and bring it around with you rather than restoring all of your sessions and keys at new machines. Also note the new icon provided.

This is available for free download at http://haanstra.eu/putty.

Wednesday, August 26, 2009

Digsby Review

First, let me start by saying I've been using Digsby for the last couple of months to meet my IM and Social Networking needs. I absolutely love it. For those who haven't heard of Digsby, it combines an IM client, Email Notifications and Social Networks into one, easy to use client.

To get started with Digsby you must first visit their website at http://www.digsby.com to create an account and download their software. The account you create is used to access the settings, including login information, for all of your accounts. Because of this, no matter where you log into digsby your accounts will automatically be imported..a very cool feature.

Going through the setup wizard, you'll be prompted to install a lot of "crapware", make sure to decline the installs. While this is annoying in the install, this prevents ads from being posted in the software during use, which is one thing I can't stand about other IM clients.

Once you get the software installed you can add in all of your accounts. Digsby supports AIM, MSN, Yahoo, Google Talk, ICQ, Jabber and Facebook chat. For email, it can support any POP or IMAP account, as well as Gmail, Yahoo and MSN. Facebook, Twitter, LinkedIn and Myspace are the supported social networking accounts.


The graphical display, as shown below, lists all of your IM accounts and contacts in a top window, with all of the social networks listed at the bottom in tabs. I like the configuration, and this can be edited and resized as needed. There are a few skins available by default, the best of which is the new Windows 7 skin. The chat windows are also customizable with skins, fonts, etc, like other IM clients. By mousing over each of the social networks you can get updates, like status updates on Myspace and Facebook and Tweets from people you follow on Twitter. You can also update your status for all accounts at the same time - a new and great timesaving feature.

One of the things that many people have been griping about is some grid computing software that gets installed with Digsby that uses your CPU when the computer is idle. This is turned on by default but Digsby allows you to disable it. Personally I don't mind, but there are a lot of people who object to this. They say that it was dishonest, even though this was in the license agreement that no one reads. If people object, I say turn it off. These guys need to make money too, and being that this is free software, with no ads (with the exception of the install) I'd say give them a pass.

Overall, I think it is the best multifunctional client on the market. It's slick interface and great features beat any other client hands down. Check it out!

Friday, August 21, 2009

My First Review: Blogger

For my first post and software review it makes sense to talk about blogger.com, where this blog is hosted. Blogger is provided for free through google, provided you sign up for a google.com account.

First, lets talk about setup. This was a breeze and took literally seconds to setup and get ready for posting. After signing in with your account you are guided through a few short questions which specify the name of your blog, the layout chosen from select templates and the license agreement. The templates provided offer some decent selections with more choices as to color once you are logged in.

 
After choosing a layout, you can also edit the positioning of page elements. Any page elements can be dragged and dropped into position, which makes this aspect of blogger very easy to use. You don’t need to be a web designer to get your ducks in order. Gadgets are easy to add by clicking the add a gadget link and choosing from the decent list of applications, although getting them to fit with your chosen theme may be difficult.  



Let’s talk about posting a new blog entry. This is obviously one of the most important parts of blogging. The default editor allows regular and html editing, although the regular editing is somewhat of a pain especially with images. Luckily, Blogger has added a new editor that you can enable by going to the Basic Settings and selecting the “updated editor” under the select post editor section. It also claims to have better raw html editing, and support for Safari, although I did not test this.

Another nice feature, and the last I’ll mention, is the easy integration with Adsense. This makes it incredibly easy to monetize your blog by simply filling out the registration. In the perfect world there would be no ads anywhere on the web, but in reality they are necessary and the integrations is very slick, allowing you to add it as a gadget.

Overall, Blogger seems to be a very well built and easy to use web application, which anyone with a bit of knowledge should be able to use. It’s applications like these that have made blogging and social networking such a hit. Make sure to come back for my next review on Digsby!